Month: October 2019

Home / Month: October 2019

HPE recently resealsed a new version of its management tool 3PAR arrays, called StoreServ Management Console version 3.6. The latest version is visually not much different compared to previous versions but its engine to process data has been improved.

  • For an extended list of new features, the Release Notes document of SSMC 3.6 is available¬†here.
  • The Administrator Guide for SSMC 3.6 can also be downloaded here.

Upgrading SSMC to the latest version 3.6 is very simple and straight forward. All we need to do is download the executables, an upgrade .star file which is provided together with the SSMC package. In my case I’m running SSMC version 3.4.1

  1. Navigate to HPE’s Software Depot and locate SSMC url or click here.
  2. Log in with your HPE Passport and download the package.
  3. After extracting the downloaded package, take note of a file called HPESSMC-3.6.0.0.269-Appliance_Upgrade.star. This is the upgrade file we are going to use in the next steps.
  4. Navigate to your SSMC homepage and login with your SSMC administrator credentials (Don’t forget to select the Administrator Console below the login box).
  5. Once you’re logged in as administrator, head over to the right side on the top and click on Actions then Upgrade.
  6. Browse and select the upgrade file we located in Step 3 and click Upload.
  7. Once the upload has finished, click on Yes, Upgrade to confirm.
  8. The upgrade will start and depending on your appliance’s configuration, it might take a while.
  9. At a certain point you’ll loose the connection with the web server and any CLI session.

     

  10. In my case, it took me 6 minutes for the web server to come up. I am using the recommended VM configuration for the SSMC appliance.
  11. Once the SSMC is up and running, you will notice the new version.

Having a webbased app running over unsecured protocols like HTTP, might not only be unsafe but also unprofessional. Therefore, most of the enterprises opt for a secure traffic over HTTPS. 3PAR StoreServ Service Processors run by default over unsecured http protocol. Installing a SSL Certificate is something every administrator should consider.

A technical whitepaper of Best Practices for implementing HPE 3PAR Service Processor can be found here.

How to?

Creating a Certificate File Request

  1. Navigate to your Service Processor webpage https://<sp_name>
  2. Log in with you customer credentials
  3. On the left pane, click on Support > SP Certificate
  4. On this page, click on Generate CSR
  5. Enter your information, including certificat’s Common Name and SAN (Subject Alternate Names)

    Adding a SAN record is very important as recent web browsers still give errors when a certificate does not contain this information.
  6. Click on Generate CSR and return to previous window.
  7. On the next step click on Export CSR
  8. After exporting the file, click on Download File and save it locally

    Signing and importing the SSL Certificate

    At this point we have created a request file which will be signed by our Certificate Authority. In large enterprises certificate handling is done by a separate departement. You could also give a try by yourself. Here is a good article about signing certificates with Microsoft CA.
    Once you have signed your certificate, you will get a file with .cer as extension.

  1. Navigate to your service processor’s webpage and select Import Certificate
  2. On the first step we’re going to load the SP’s certificate we have just signed in the previous step.
    (Note the sequence)
  3. Browse the certificat’s location and click on Load Certificate
  4. On the following screen we are going to load the intermediate certificate of the CA or the Issuing Certificate.
  5. Finally, we will upload the Root Certificate. Browse the file and click on Import Certificate.
  6. Once the 3rd certificate (the certificate from the previous step) the Web Service of the Service Processor will restart.
  7. Make sure to close any active browser before navigating again to the service processor
  8. Next time you navigate to the array’s SP the SSL certificate should be valid.

 

For any questions, feel free to contact us.